Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

winnet32b inet32upd

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

winnet32b inet32upd

#1 Příspěvek od nexum1c3q »

Zdravím mám problém po spuštění PC mi ve správci úloh běží tyto dvě úlohy winnet32b inet32upd a zabírají 100% výkonu procesoru potřeboval bych pomoct tyto procesy nějak odstranit ale potřeboval bych trochu laidský návod moc se nevyznám v nějakých speciálních výrazech. Předem děkuji
tady je log z FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2015 02
Ran by home (administrator) on PC on 16-05-2015 09:40:47
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\APRP\aprp.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Users\home\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-04-08] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2893419502-1249477774-2242879243-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\home\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS)

Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\home\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-04]
CHR Extension: (Google Docs) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-04]
CHR Extension: (Google Drive) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-04]
CHR Extension: (YouTube) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-04]
CHR Extension: (Steam inventory helper) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2014-12-18]
CHR Extension: (Google Search) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-04]
CHR Extension: (Google Sheets) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-04]
CHR Extension: (Google Wallet) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-04]
CHR Extension: (Gmail) - C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-04]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [321024 2013-08-22] (Microsoft Corporation)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 CMUAC; C:\Windows\system32\DRIVERS\Headset6400x1.SYS [387072 2013-10-03] (A4Tech Inc.)
R3 IOMap; C:\Windows\system32\drivers\IOMap64.sys [24824 2013-07-02] (ASUSTeK Computer Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-16] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation)
R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [39056 2015-04-09] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-16 09:40 - 2015-05-16 09:40 - 00029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-16 09:40 - 2015-05-16 09:40 - 00015327 _____ () C:\Users\home\Desktop\LM.bat
2015-05-16 09:21 - 2015-05-16 09:38 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-16 09:21 - 2015-05-16 09:21 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-16 09:21 - 2015-05-16 09:21 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-16 09:21 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-16 09:21 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-16 09:18 - 2015-05-16 09:19 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\home\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-15 23:36 - 2015-05-15 23:36 - 00000472 _____ () C:\Users\home\Downloads\FixList (1).zip
2015-05-15 23:35 - 2015-05-15 23:35 - 00037864 _____ () C:\Users\home\Desktop\Addition.txt
2015-05-15 23:34 - 2015-05-16 09:40 - 00012992 _____ () C:\Users\home\Desktop\FRST.txt
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\FRSTLauncher (2).exe
2015-05-15 23:33 - 2015-05-15 23:33 - 00112640 _____ (forum.viry.cz) C:\Users\home\Desktop\FRSTLauncher (2).exe
2015-05-15 23:32 - 2015-05-15 23:32 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 215233.crdownload
2015-05-15 23:31 - 2015-05-15 23:31 - 00112640 _____ (forum.viry.cz) C:\Users\home\Downloads\Nepotvrzeno 827992.crdownload
2015-05-15 23:31 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Desktop\FRST64.exe
2015-05-15 23:30 - 2015-05-16 09:40 - 00000000 ____D () C:\FRST
2015-05-15 23:30 - 2015-05-15 23:30 - 02106368 _____ (Farbar) C:\Users\home\Downloads\FRST64.exe
2015-05-15 23:28 - 2015-05-15 23:28 - 00000472 _____ () C:\Users\home\Downloads\FixList.zip
2015-05-15 22:28 - 2015-05-15 22:28 - 00000952 _____ () C:\Users\home\Desktop\Play Minecraft.lnk
2015-05-15 22:28 - 2015-05-15 22:28 - 00000000 ____D () C:\Users\home\AppData\Local\TagCraftMC
2015-05-15 22:20 - 2015-05-15 22:27 - 135427653 _____ (TagCraftMC ) C:\Users\home\Downloads\Minecraft_1.8.3_Auto_Installer.exe
2015-05-15 22:17 - 2015-05-15 22:17 - 00562272 _____ (Oracle Corporation) C:\Users\home\Downloads\chromeinstall-8u45.exe
2015-05-15 22:16 - 2015-05-15 22:16 - 00327680 _____ () C:\Users\home\Downloads\Minecraft-1.8.3.exe
2015-05-15 22:09 - 2015-05-15 22:10 - 06239851 _____ () C:\Users\home\Downloads\Minecraft-1-8-3-plna-hra-zdarma-CZ.zip
2015-05-15 22:08 - 2015-05-15 22:08 - 06239853 _____ () C:\Users\home\Downloads\Minecraft-1.8.3-plna-hra-zdarma-CZ-.zip
2015-05-15 22:07 - 2015-05-16 01:00 - 00000000 ____D () C:\Users\home\AppData\Roaming\.minecraft
2015-05-15 09:53 - 2015-05-15 09:53 - 00000000 ____D () C:\ProgramData\ceae573e00006040
2015-05-15 09:52 - 2015-05-15 09:52 - 00000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2015-05-15 09:42 - 2015-05-15 09:42 - 00006538 _____ () C:\Users\home\Downloads\megafont.zip
2015-05-15 09:32 - 2015-05-15 09:32 - 01821663 _____ () C:\Users\home\Downloads\Adobe-Photoshop-CS5-Crack.rar
2015-05-14 22:40 - 2015-05-15 09:52 - 48657168 _____ () C:\Users\home\Downloads\avatar.psd
2015-05-12 00:26 - 2015-05-12 00:26 - 05963600 _____ () C:\Users\home\ts3_recording_15_05_12_0_26_2.wav
2015-05-10 11:46 - 2013-07-02 16:29 - 00024824 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\Drivers\IOMap64.sys
2015-05-09 17:20 - 2015-05-09 17:20 - 00000000 ____D () C:\Users\home\Documents\BeamNG.drive
2015-05-09 17:19 - 2015-05-09 17:25 - 187642614 _____ () C:\Users\home\Downloads\BeamNG-Techdemo-v2.1.zip
2015-05-09 17:03 - 2015-05-09 17:03 - 01081072 _____ (Unity Technologies ApS) C:\Users\home\Downloads\UnityWebPlayer (1).exe
2015-05-09 15:08 - 2015-05-09 15:08 - 07973496 _____ (TeamViewer GmbH) C:\Users\home\Downloads\TeamViewer_Setup_cs-iuu (1).exe
2015-04-28 11:11 - 2015-04-28 11:11 - 00001998 _____ () C:\Users\home\Desktop\Vítejte u registrace produktu ASUS.lnk
2015-04-26 15:04 - 2015-04-26 15:04 - 00200174 _____ () C:\Users\home\Downloads\Nazvoslovi_-_ARENY.odp
2015-04-23 18:20 - 2015-04-23 18:20 - 00000022 _____ () C:\Windows\GPU-Z.INI
2015-04-23 18:14 - 2015-04-23 18:14 - 00001066 _____ () C:\Users\Public\Desktop\GPUTweakStreaming.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00001059 _____ () C:\Users\Public\Desktop\ASUS GPU Tweak.lnk
2015-04-23 18:14 - 2015-04-23 18:14 - 00000032 _____ () C:\setup.log
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Windows\Downloaded Installations
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-04-23 18:14 - 2015-04-23 18:14 - 00000000 ____D () C:\Program Files (x86)\ASUS
2015-04-23 08:21 - 2015-04-23 08:21 - 00456973 _____ () C:\Users\home\Downloads\Grand Theft Auto V 8, 8.1 & 10.rar
2015-04-23 08:07 - 2015-04-14 08:09 - 56382096 _____ (Rockstar Games) C:\Users\home\Desktop\Social Club v1.1.5.6 Setup.exe
2015-04-23 08:00 - 2015-04-23 08:06 - 447096881 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.Update.1.and.Crack.v2-3DM.zip
2015-04-23 07:46 - 2015-04-23 07:47 - 09659782 _____ () C:\Users\home\Downloads\GTA V - Crack Only.rar
2015-04-23 07:27 - 2015-04-22 18:36 - 00000080 _____ () C:\Users\home\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files\Rockstar Games
2015-04-23 07:27 - 2015-04-16 00:10 - 00000000 ____D () C:\Program Files (x86)\Rockstar Games
2015-04-23 07:24 - 2015-04-23 07:24 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm (1).torrent
2015-04-23 07:22 - 2015-04-23 07:22 - 00016323 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.1.and.crack.v2.3dm.torrent
2015-04-23 07:10 - 2015-04-23 08:19 - 00000000 ____D () C:\Users\home\Documents\Rockstar Games
2015-04-23 07:10 - 2015-04-23 07:10 - 00000000 ____D () C:\Users\home\AppData\Local\Rockstar Games
2015-04-22 21:36 - 2015-04-22 21:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2015-04-22 18:27 - 2015-05-06 17:07 - 00001397 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2015-04-22 18:26 - 2015-04-22 18:26 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2015-04-22 18:26 - 2015-04-08 22:32 - 00560968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-04-22 18:24 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00100680 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll
2015-04-22 18:24 - 2015-04-09 02:58 - 00039056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys
2015-04-22 18:20 - 2015-04-22 18:21 - 283201840 _____ (NVIDIA Corporation) C:\Users\home\Downloads\350.12-desktop-win8-win7-winvista-64bit-international-whql.exe
2015-04-22 18:13 - 2015-04-22 18:13 - 00000000 ____D () C:\Windows\LastGood
2015-04-22 07:42 - 2015-04-22 07:42 - 00032111 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.update.3.v1.0.33502.and.crack.v4.3dm.torrent
2015-04-22 07:41 - 2015-04-22 07:41 - 00031991 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.2.and.crack.3dm.torrent
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack (1)
2015-04-21 22:05 - 2015-04-21 22:05 - 00187479 _____ () C:\Users\home\Downloads\GTAV-utoerrent-PC-Tutoriales y de todo gamer-repack
2015-04-21 22:05 - 2015-04-21 22:05 - 00000722 _____ () C:\Users\home\Downloads\GTA V+CRACK.txt
2015-04-21 22:01 - 2015-05-15 09:20 - 00000000 ____D () C:\ProgramData\3751633053251181686
2015-04-21 22:01 - 2015-04-21 22:01 - 00162454 _____ () C:\Users\home\Downloads\[kickass.to]grand.theft.auto.v.2015.dlc.s.full.unlocked.retail.torrent
2015-04-21 22:01 - 2015-04-21 22:01 - 00000000 ____D () C:\Program Files (x86)\SaalePllUs
2015-04-21 22:00 - 2015-05-16 09:33 - 00000000 ____D () C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
2015-04-21 22:00 - 2015-05-15 22:00 - 00000444 _____ () C:\Windows\Tasks\Bidaily Synchronize Task.job
2015-04-21 22:00 - 2015-04-21 22:00 - 00003338 _____ () C:\Windows\System32\Tasks\Bidaily Synchronize Task
2015-04-21 22:00 - 2015-04-21 22:00 - 00001947 _____ () C:\Users\home\Desktop\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk
2015-04-21 21:59 - 2015-04-21 22:00 - 00385536 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe
2015-04-21 21:48 - 2015-04-21 21:48 - 20197233 _____ () C:\Users\home\Downloads\GTA-5-PC-Game-Downloader-Fix-Patch-Full-Unlocked.rar
2015-04-21 19:40 - 2015-04-21 19:40 - 00154171 _____ () C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED +CRACK.torrent
2015-04-21 19:39 - 2015-04-21 19:39 - 00017552 _____ () C:\Users\home\Downloads\Grand.Theft.Auto.V.(2012).RELOADED.torrent
2015-04-21 17:32 - 2015-04-21 17:34 - 00000000 ____D () C:\Windows\system32\appmgmt
2015-04-16 15:29 - 2015-04-16 15:30 - 00638976 _____ () C:\Users\home\Downloads\Detection.msi
2015-04-16 00:24 - 2015-04-16 00:25 - 00000000 ____D () C:\Windows\LastGood.Tmp
2015-04-16 00:23 - 2015-04-09 02:58 - 31570064 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 30397072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 25375048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 24053576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15818528 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 15716232 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 14006752 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 12852784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 11380728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 10423952 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-04-16 00:23 - 2015-04-09 02:58 - 02896528 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 02573456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01895568 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435012.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01086424 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01047368 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 01037640 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00970568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00962192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00927440 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00849552 _____ () C:\Windows\system32\nvmcumd.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00499344 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00402576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00390472 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00346256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00175880 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00154256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-04-16 00:23 - 2015-04-09 02:58 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-04-16 00:20 - 2015-04-16 00:20 - 00000739 _____ () C:\Users\home\Desktop\Launcher – zástupce.lnk
2015-04-16 00:02 - 2015-04-16 00:02 - 00031736 _____ () C:\Users\home\Downloads\[kickass.to]3dmgame.grand.theft.auto.v.update.3.v1.0.335.2.and.crack.v4.3dm.7z.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-16 09:41 - 2014-12-31 15:19 - 00000892 _____ () C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2015-05-16 09:39 - 2014-12-31 15:19 - 00000914 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-16 09:38 - 2014-09-04 17:36 - 00000962 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-16 09:38 - 2014-09-03 14:16 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-16 09:38 - 2013-08-22 16:46 - 00067089 _____ () C:\Windows\setupact.log
2015-05-16 09:38 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-16 09:37 - 2013-09-30 05:39 - 01962823 _____ () C:\Windows\WindowsUpdate.log
2015-05-16 09:37 - 2013-09-29 21:09 - 00109874 _____ () C:\Windows\PFRO.log
2015-05-16 09:37 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-16 09:34 - 2013-09-30 05:52 - 00003942 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{E5F34E29-9037-41AA-80DE-74D3938F68C1}
2015-05-16 09:32 - 2013-08-22 16:44 - 05040912 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-16 09:27 - 2013-09-30 05:45 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2893419502-1249477774-2242879243-1001
2015-05-16 01:01 - 2014-09-16 17:34 - 00000000 ____D () C:\Users\home\AppData\Roaming\TS3Client
2015-05-16 01:00 - 2014-09-04 17:36 - 00000966 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-16 00:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-15 22:18 - 2015-02-05 19:49 - 00097888 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-05-15 22:18 - 2015-02-05 19:48 - 00000000 ____D () C:\Program Files (x86)\Java
2015-05-15 22:09 - 2014-09-30 16:45 - 00000000 ____D () C:\Users\home\AppData\Roaming\NVIDIA
2015-05-15 10:25 - 2014-12-13 17:57 - 00000000 ____D () C:\Users\home\AppData\Roaming\OBS
2015-05-14 22:42 - 2014-12-28 21:23 - 00000000 ____D () C:\Users\home\AppData\Local\Battle.net
2015-05-14 22:36 - 2015-03-20 19:26 - 00000000 ____D () C:\Users\home\Desktop\Adobe CS5
2015-05-14 21:42 - 2014-12-28 21:22 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2015-05-14 21:14 - 2014-09-04 08:44 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-14 10:57 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-12 00:26 - 2013-09-30 05:40 - 00000000 ____D () C:\Users\home
2015-05-11 12:33 - 2015-01-14 21:33 - 00000000 ____D () C:\Users\home\Desktop\referáty
2015-05-10 21:22 - 2015-01-28 16:24 - 00000000 ____D () C:\Users\home\AppData\Local\CrashDumps
2015-05-09 15:08 - 2015-02-18 22:50 - 00001059 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00001047 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-05-09 15:08 - 2015-02-18 22:50 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-05-01 18:51 - 2014-09-03 14:19 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-05-01 18:51 - 2014-09-03 14:19 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-05-01 18:50 - 2014-09-03 14:19 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-04-23 18:14 - 2014-09-03 14:40 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-23 07:33 - 2014-09-04 09:22 - 00097862 _____ () C:\Windows\DirectX.log
2015-04-22 18:26 - 2014-09-03 14:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-04-22 18:26 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-04-22 14:48 - 2013-09-30 06:20 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-22 14:48 - 2013-09-30 05:57 - 00738682 _____ () C:\Windows\system32\perfh005.dat
2015-04-22 14:48 - 2013-09-30 05:57 - 00151404 _____ () C:\Windows\system32\perfc005.dat
2015-04-21 17:34 - 2014-09-04 18:02 - 00000000 ____D () C:\ProgramData\Skype
2015-04-21 17:15 - 2014-09-04 18:02 - 00000000 ____D () C:\Users\home\AppData\Roaming\Skype
2015-04-17 12:01 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-04-16 18:39 - 2014-12-31 15:19 - 00003842 _____ () C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2015-04-16 18:39 - 2014-12-31 15:19 - 00003802 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-04-16 00:47 - 2015-03-18 19:06 - 00000000 ____D () C:\Users\home\AppData\Roaming\uTorrent
2015-04-16 00:24 - 2014-09-03 14:15 - 00000000 ____D () C:\Program Files\NVIDIA Corporation

==================== Files in the root of some directories =======

2015-05-16 09:40 - 2015-05-16 09:40 - 0029696 _____ () C:\Users\home\AppData\Local\MSGBOX.EXE
2015-05-15 09:52 - 2015-05-15 09:52 - 0000000 _____ () C:\Users\home\AppData\Local\Temp.dat
2014-09-03 14:41 - 2014-09-03 14:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-11 17:20

==================== End Of Log ============================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Jste si diky tomu nelegalnimu GTA, Minecraftu a Photoshopu pekne zasvinil PC :arcisit:

:arrow: Udelejte MBAM dle tohoto http://forum.viry.cz/viewtopic.php?f=29&t=137928
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#3 Příspěvek od nexum1c3q »

no už mi probíhá skenování. mohl bych tě požádat aby jsi mi přiblížil co se děje na mém PC protože se to všechno začalo dít včera když jsme se s kámošem ze základky rozhodli že pujdeme zase hrat minecraft a když sem hledal nějaký vhodný instaler stalo se tohle..... GTA a photoshop už mám na PC nějaký ten pátek a nic se nedělo

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#4 Příspěvek od nexum1c3q »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 16. 5. 2015
Čas skenování: 9:22:05
Protokol: MBAMLOG.txt
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 345670
Uplynulý čas: 8 min, 40 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 1
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, 6452, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0]

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 2
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],
PUP.Optional.Multiplug, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, Do karantény, [45346ad9b4d679bdc1104fcb9f647f81],

Hodnoty registru: 1
Backdoor.Agent.TRJ, HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|957286bacb03df96ddb4e19f8f1fa79b, "C:\Users\home\AppData\Roaming\System.exe" .., Do karantény, [4732370c0882a6904cfb51a653b060a0]

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 10
Backdoor.Agent.ASM, C:\Users\home\Desktop\Dragon Age Inquisition crack.exe, Do karantény, [f48533103e4c0531e17627e1778b54ac],
Trojan.MSIL.GenX, C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\957286bacb03df96ddb4e19f8f1fa79b.exe, Smazat při restartu, [9adfdb6835551d19efd856d024dd2ad6],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\DTLite4491-0356.exe, Do karantény, [86f3c77cec9e72c4ee3bb94fbc4a9967],
HackTool.Hoylecann, C:\Users\home\Downloads\Hoic.zip, Do karantény, [7dfcf84be1a9e94dec6c475d7d83e719],
PUP.Optional.SmsPay, C:\Users\home\Downloads\IMG_02112014.scr, Do karantény, [caaffe4598f2b1851e5406ec0bf64bb5],
PUP.Optional.OpenCandy, C:\Users\home\Downloads\jetaudio-1.0.exe, Do karantény, [d5a46cd7d0ba340254d50efa9a6cfb05],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Touchgrind+BMX+Full+MOD+v1.3+ClubVAIO.apk.exe, Do karantény, [cfaa2023bfcb42f486543da9748ded13],
Backdoor.Agent.ASM, C:\Users\home\Downloads\Dragon-Age-Inquisition-crack.rar, Do karantény, [b4c52d16b3d7989e302763a57290eb15],
Hacktool.Agent, C:\Users\home\Downloads\NEW CSGO Elo Rank System.rar, Do karantény, [e297f74c5d2daa8c80ecfd16897d8878],
Backdoor.Agent.TRJ, C:\Users\home\AppData\Roaming\System.exe, Smazat při restartu, [4732370c0882a6904cfb51a653b060a0],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#5 Příspěvek od vyosek »

Spolecne s tim "vhodnym" installerem Minecraftu jste si tam stahl i hoooodne haveti...Nejlepsi by bylo si hru a i ostatni SW zakoupit a nebyly by tyto problemy. Nehlede na to, ze se vystavujete riziku trestniho stihani za porusovani autorskeho zakona.

Neudelal jste sken MBAMem dle pokynu, dal jste jen Sken hrozeb. Ale v navodu se pise Vlastni sken a otestovat vsechny disky. Takze jeste jednou prosim
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#6 Příspěvek od nexum1c3q »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 16. 5. 2015
Čas skenování: 12:05:37
Protokol: sken.txt
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.05.16.01
Databáze rootkitů: v2015.05.14.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: home

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 523280
Uplynulý čas: 1 hod, 12 min, 46 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 4
PUP.Optional.Multiplug.A, C:\Program Files (x86)\SaalePllUs\SaalePllUs.exe, , [fc552272ee9c15216fd1d77b0cf6728e],
PUP.Optional.MultiPlug, C:\Users\home\Downloads\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe, , [b59c0b894e3cae882e6367e9d72b6b95],
PUP.Optional.Multiplug.A, C:\Windows\System32\Tasks\Bidaily Synchronize Task, , [5ef39ff558320a2c1944d2981de840c0],
PUP.Optional.Multiplug.A, C:\Windows\Tasks\Bidaily Synchronize Task.job, , [8fc297fde0aab38388d6bfab62a39e62],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#7 Příspěvek od vyosek »

:arrow: Nalezy smazat

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#8 Příspěvek od nexum1c3q »

# AdwCleaner v4.204 - Log vytvořen 16/05/2015 v 13:42:02
# Aktualizováno 12/05/2015 by Xplode
# Databáze : 2015-05-12.2 [Server]
# Operační system : Windows 8.1 Pro (x64)
# Uživatelské jméno : home - PC
# Spuštěno z : C:\Users\home\Desktop\adwcleaner_4.204.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\3751633053251181686
Složka Smazáno : C:\ProgramData\ceae573e00006040
Složka Smazáno : C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}
Složka Smazáno : C:\Program Files (x86)\SaalePllUs
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
Složka Smazáno : C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKCU\Software\12c1ae7e6b63dba77ecd12548fd9bd0c
Klíč Smazáno : HKCU\Software\957286bacb03df96ddb4e19f8f1fa79b
Klíč Smazáno : HKLM\SOFTWARE\213c015d-b051-bb4a-d778-7896fa2e6986
Klíč Smazáno : HKLM\SOFTWARE\Classes\TypeLib\{995AEC82-0E5F-419A-864E-4E50012D0863}
Klíč Smazáno : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klíč Smazáno : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B138259A-351E-33FA-2726-8D71704F1DA9}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BE360B8B-0F10-CA89-FC84-A5EAB71A6AF8}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CA1838EF-A497-194E-3850-37A62CEE398B}

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v42.0.2311.152

[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://dts.search.ask.com/sr?src=crb&gct=ds&appid=209&systemid=488&v=a12834-363&apn_uid=9134893254624279&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms}
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aapocclcgogkmnckokdopfmhonfmgoek
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : aohghmighlieiainnegkcijnfilokake
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : apdfllckaahabafndbhieahigkjlhalf
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : cmeakgjggjdlcpncigglobpjbkabhmjl
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : felcaaldnbdncclmgdcncolpebgiejap
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Smazáno [Startup_URLs] : hxxp://www.google.com/", "hxxp://www.search.ask.com/?o=APN11459&gct=hp&d ... 34-363&t=4

*************************

AdwCleaner[R0].txt - [3776 bytů] - [16/05/2015 13:40:57]
AdwCleaner[S0].txt - [3674 bytů] - [16/05/2015 13:42:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3732 bytů] ##########

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#9 Příspěvek od nexum1c3q »

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by home on so 16. 05. 2015 at 13:45:26,09.
Microsoft Windows 8.1 Pro 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\home\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

16. 5. 2015 13:46:10 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\COMMON~1\Blizzard Entertainment deleted successfully
C:\PROGRA~3\DAEMON Tools Lite deleted successfully
C:\Users\home\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\Users\home\AppData\Local\MSGBOX.EXE deleted

==== Chromium Look ======================


==== Chromium Startpages ======================

C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences
"homepage": "http://www.google.cz/",


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.cz/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"

==== Reset Google Chrome ======================

C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63 will be deleted at reboot
C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4 will be deleted at reboot

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\home\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=16 folders=16 14135208 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\home\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\home\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\MpCmdRun.log" deleted
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\I95NB0E0" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\J5C1DE63" not found
"C:\Users\home\AppData\Local\Microsoft\Windows\INetCache\IE\Q79KS3E4" not found

==== EOF on so 16. 05. 2015 at 13:56:20,43 ======================

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#10 Příspěvek od vyosek »

Poprosim o novy log z FRST
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#11 Příspěvek od nexum1c3q »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-05-2015 02
Ran by home (administrator) on PC on 16-05-2015 19:03:55
Running from C:\Users\home\Desktop
Loaded Profiles: home (Available profiles: home)
Platform: Windows 8.1 Pro (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\ASGT.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Oracle Corporation) C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe
() C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\winnet32b.exe
() C:\Users\home\AppData\Roaming\Microsoft\Networking\inet32upd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2014-09-03] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_pepper.exe [927920 2015-04-16] (Adobe Systems Incorporated)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Photoshop CS5 Crack.exe [2015-05-15] (Oracle Corporation)
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost32.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\conhost64.exe [2015-05-15] ()
Startup: C:\Users\home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk [2015-04-21]
ShortcutTarget: Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.lnk -> C:\ProgramData\{f31b9353-e84d-146c-f31b-b9353e844d4f}\Grand Theft Auto V (2015) + DLC's - FULL UNLOCKED - RETAIL.exe (No File)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2893419502-1249477774-2242879243-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.cz/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2893419502-1249477774-2242879243-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-15] (Oracle Corporation)
Tcpip\..\Interfaces\{C1C6FDE8-6265-4941-B184-76F8227E6FE9}: [NameServer] 62.129.50.20,85.135.32.100

FireFox:
========

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#12 Příspěvek od nexum1c3q »

:arrow: zdravím příspěvek můžete zamknout problém jsem vyřešil za pomoci jednoho antivirového programu který mi byl doporučen stránkou freefixer http://antivirus.baidu.com/en/
Děkuji za ochotu při odstraňování havěti a přeju hodně štěstí v boji proti virům :)

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#13 Příspěvek od vyosek »

No jak myslite, ale o Baidu vime sve a neni to dobry, spise neduveryhodny, antivir...ale to je Vase vec...
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

nexum1c3q
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 16 kvě 2015 08:22

Re: winnet32b inet32upd

#14 Příspěvek od nexum1c3q »

chcete poslat FRST log po tom co jsem tu havět odstranil ?

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: winnet32b inet32upd

#15 Příspěvek od vyosek »

Ano, spustte FRST a kliknete na Scan, logy sem pak nasypte
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Odpovědět